From: Christian Brauner Date: Sun, 29 Oct 2017 16:03:57 +0000 (+0100) Subject: start: close data socket in parent X-Git-Tag: lxc-3.0.0.beta1~201^2~4 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=a9e1109e0773b8197ec91ce962e3a4233a737050;p=thirdparty%2Flxc.git start: close data socket in parent Brings the number of open fds in the monitor process for a standard container without ttys down to 17. Signed-off-by: Christian Brauner --- diff --git a/src/lxc/start.c b/src/lxc/start.c index ee8a4551e..c1b286e88 100644 --- a/src/lxc/start.c +++ b/src/lxc/start.c @@ -1479,6 +1479,11 @@ int __lxc_start(const char *name, struct lxc_handler *handler, ERROR("Failed to spawn container \"%s\".", name); goto out_detach_blockdev; } + /* close parent side of data socket */ + close(handler->data_sock[0]); + handler->data_sock[0] = -1; + close(handler->data_sock[1]); + handler->data_sock[1] = -1; handler->conf->reboot = 0;